StackRadar

thehive 1.0.7 Helm chart

strangebee-helmOfficialVerified publisher

Scored 17 Sept 2026

The official Helm Chart of TheHive for Kubernetes

Version 1.0.7 2 days agoapp version 5.8.0-1 4Artifact Hub

thehive 1.0.7 deploys 7 container images: quay.io/minio/minio, curlimages/curl, strangebee/thehive, bitnamilegacy/cassandra and 3 more. Across them, 1,502 findings4 critical, 5 high. The highest contribution is GHSA-f58c-gq56-vjjf in tika-core 2.9.3, fixed in 3.2.2. Chart.yaml declares kubeVersion >= 1.23.0-0; rendered for Kubernetes 1.23.0.

Radar Score

16,242452471,246

1,502 findings over 7 of 7 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

7 images
ImageTagVulnerabilitiesRadar Score
quay.io/minio/minioRELEASE.2025-09-07T16-13-09Z0091101,084
curlimages/curl×28.17.0012033753
strangebee/thehive5.8.0-100311241,732
bitnamilegacy/cassandra4.1.7-debian-12-r312682743,954
bitnamilegacy/os-shell12-debian-12-r5101472553,168
bitnamilegacy/elasticsearch×29.1.2-debian-12-r031653584,710
quay.io/minio/mc×2RELEASE.2025-08-13T08-35-41Z00792841

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

574 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowDEBIAN-CVE-2026-53613util-linux@2.38.1-5+deb12u3no fix listed
LowDEBIAN-CVE-2026-53615util-linux@2.38.1-5+deb12u3no fix listed
LowGO-2026-5841github.com/klauspost/compress@v1.18.01.18.7
LowGO-2026-5932golang.org/x/crypto@v0.40.0no fix listed
LowGO-2026-6061google.golang.org/grpc@v1.71.01.82.1
LowALPINE-CVE-2025-46394busybox@1.37.0-r191.37.0-r20
LowDEBIAN-CVE-2026-40228systemd@252.39-1~deb12u2no fix listed
LowGHSA-fghv-69vj-qj49netty-codec-http@4.1.118.Final4.1.125.Final
LowDEBIAN-CVE-2026-57062gnupg2@2.2.40-1.1+deb12u2no fix listed
LowGHSA-p47f-322f-whfhlogback-core@1.2.91.5.33
LowGHSA-6vgw-5pg2-w6jppip@23.3.226.0
LowBIT-python-2026-15310python@3.11.11-0no fix listed
LowGHSA-6v67-2wr5-gvf4logback-core@1.2.91.3.15
LowDEBIAN-CVE-2026-53910diffutils@1:3.8-4no fix listed
LowBIT-java-2026-22007java@11.0.25-11-11.8.0
LowBIT-java-2026-34268java@11.0.25-11-11.8.0
LowBIT-python-2026-6879python@3.11.11-03.10.21
LowALPINE-CVE-2024-58251busybox@1.37.0-r191.37.0-r20
LowDEBIAN-CVE-2026-89156pcre2@10.42-110.42-1+deb12u1
LowBIT-python-2026-18503python@3.11.11-03.10.21
LowDEBIAN-CVE-2026-5958sed@4.9-14.9-1+deb12u1
LowDEBIAN-CVE-2026-6368glibc@2.36-9+deb12u14no fix listed
LowGHSA-qqpg-mvqg-649vlogback-core@1.2.91.5.25
LowGHSA-c4qc-4q9p-m9q9shiro-core@1.13.02.1.0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.0.7latest2 days ago5.8.0-1452471,24616,242
1.0.610 days ago5.7.6-1452421,26316,241
1.0.51 month ago5.7.5-1452451,26516,346

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/strangebee-helm/thehive.svg)](https://charts.stackradar.io/charts/strangebee-helm/thehive)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 16 Sept 2026 · scanned 17 Sept 2026 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.